bugcrowd / vulnerability-rating-taxonomy
Bugcrowd’s baseline priority ratings for common security vulnerabilities
☆474Updated this week
Alternatives and similar repositories for vulnerability-rating-taxonomy:
Users that are interested in vulnerability-rating-taxonomy are comparing it to the libraries listed below
- Bug Bounty Guide is a launchpad for bug bounty programs and bug bounty hunters.☆463Updated 2 years ago
- Automated security reporting from markdown templates (HackerOne and Bugcrowd are currently the platforms supported)☆452Updated 5 years ago
- Leverages publicly available datasets from Google BigQuery to generate content discovery and subdomain wordlists☆723Updated 2 years ago
- ☆425Updated 2 years ago
- ☆582Updated last year
- ☆360Updated 3 years ago
- SecLists is the security tester's companion. It is a collection of multiple types of lists used during security assessments. List types i…☆142Updated 7 years ago
- A collection of templates for bug bounty reporting☆396Updated 3 years ago
- 🎯 Open Redirect Payload List☆576Updated 9 months ago
- Wordlists that have been compiled using Commonspeak2. This repo is updated every time new wordlists are generated.☆527Updated 6 years ago
- ☆210Updated 3 years ago
- An automated approach to performing recon for bug bounty hunting and penetration testing.☆441Updated 4 years ago
- Inspired by https://github.com/djadmin/awesome-bug-bounty, a list of bug bounty write-up that is categorized by the bug nature☆109Updated 7 years ago
- Open Redirect Payloads☆609Updated 6 months ago
- vulnerable OAuth 2.0 applications: understand the security implications of your OAuth 2.0 decisions.☆316Updated last year
- Content discovery wordlists generated using BigQuery☆567Updated 5 years ago
- This repository created for personal use and added tools from my latest blog post.☆349Updated 2 years ago
- Web App bug hunting☆563Updated last month
- Finds unknown classes of injection vulnerabilities☆672Updated last week
- ReconNess is a platform to allow continuous recon (CR) where you can set up a pipeline of #recon tools (Agents) and trigger it base on sc…☆319Updated 3 weeks ago
- ☆809Updated last year
- bXSS is a utility which can be used by bug hunters and organizations to identify Blind Cross-Site Scripting.☆532Updated 2 years ago
- Some good resources for getting started with application security☆142Updated 3 years ago
- This repository contains all the XSS cheatsheet data to allow contributions from the community.☆420Updated 5 months ago
- An open source tool to aid in command line driven generation of bug bounty reports based on user provided templates.☆210Updated 4 years ago
- A DNS Bruteforcing Wordlist Generator☆357Updated 2 years ago
- A Powerful Subdomain Takeover Tool☆948Updated last year
- A simple variable based template editor using handlebarjs+strapdownjs. The idea is to use variables in markdown based files to easily rep…☆253Updated last year
- Generates lists of live hosts and URLs for targeting, automating the usage of MassDNS, Masscan and nmap to filter out unreachable hosts a…☆364Updated 2 years ago
- Fetches javascript file from a list of URLS or subdomains.☆766Updated last year